Solved

LDAP Query SCCM 2012 Check group membership

Posted on 2013-01-25
2
1,934 Views
Last Modified: 2013-04-22
Hi all,

I want to create a global Condition to check if a user is member of a group in AD
and add that Global condition to an application

1) Is this possible?
2) If so how

I have an LDAP Query that does this:
(&(objectClass=user)(sAMAccountName=yourUserName)(memberof=CN=YourGroup,OU=Users,DC=YourDomain,DC=com))

But i need to translate this into the SCCM 2012 Form

What do i add where?

LDAP Prefix:
Distiguished name:
Search Filter:
Search Scope:
Property:

any help is welcome
0
Comment
Question by:cornilm
2 Comments
 
LVL 31

Accepted Solution

by:
merowinger earned 500 total points
ID: 38818782
When creating a global condition select the folloowing options:

"Windows" as device type
"Setting" as condition type
"Active Directory" as Setting type

Then you can configure you LDAP Search for your specific Group.

I would enable AD User and Group Discovery and build User Collections to achieve this
0
 

Author Closing Comment

by:cornilm
ID: 39103474
sry for the late reply i have been sick
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you migrate a Terminal Server licenses server inside the 2008 server family, you can takte advantage of the build-in migration tool. If you like to migrate an older 2003 Server (and the installed client CALs) to a 2008 R2 server for example, you …
I was supporting a handful of Windows 2008 (non-R2) 2 node clusters with shared quorum disks. Some had SQL 2008 installed and some were just a vendor application that we supported. For the purposes of this article it doesn’t really matter which so w…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will show how to configure a single USB drive with a separate folder for each day of the week. This will allow each of the backups to be kept separate preventing the previous day’s backup from being overwritten. The USB drive must be s…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question